GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
4,319
Erlang
31
GitHub Actions
21
Go
2,077
Maven
5,000+
npm
3,746
NuGet
674
pip
3,435
Pub
12
RubyGems
892
Rust
881
Swift
37
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
249 advisories
Filter by severity
Incorrect access control in the User Registration page of Crypto Currency Tracker (CCT) before v9...
Critical
Unreviewed
CVE-2023-37759
was published
Sep 8, 2023
An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation...
Critical
Unreviewed
CVE-2023-31242
was published
Sep 5, 2023
Improper access control in the Intel(R) Ethernet Controller RDMA driver for linux before version...
Critical
Unreviewed
CVE-2023-25775
was published
Aug 11, 2023
SAP PowerDesigner - version 16.7, has improper access control which might allow an...
Critical
Unreviewed
CVE-2023-37483
was published
Aug 8, 2023
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.5). Affected device...
Critical
Unreviewed
CVE-2023-29130
was published
Jul 11, 2023
A vulnerability has been discovered in the customer-managed ShareFile storage zones controller...
Critical
Unreviewed
CVE-2023-24489
was published
Jul 11, 2023
?Delta Electronics InfraSuite Device Master versions prior to 1.0.7 contain improper access...
Critical
Unreviewed
CVE-2023-30765
was published
Jul 10, 2023
Rockwell Automation was made aware that Kinetix 5500 drives, manufactured between May 2022 and...
Critical
Unreviewed
CVE-2023-1834
was published
Jul 6, 2023
A privilege escalation allowing remote code execution was discovered in the orchestration service.
Critical
Unreviewed
CVE-2023-2530
was published
Jun 7, 2023
The Pinterest Automatic plugin for WordPress is vulnerable to authorization bypass due to missing...
Critical
Unreviewed
CVE-2021-4380
was published
Jun 7, 2023
Snap One OvrC cloud servers contain a route an attacker can use to bypass requirements and...
Critical
Unreviewed
CVE-2023-31241
was published
May 22, 2023
This vulnerability allows remote attackers to bypass authentication on affected installations of...
Critical
Unreviewed
CVE-2023-27350
was published
Apr 20, 2023
Some Hikvision Hybrid SAN/Cluster Storage products have an access control vulnerability which can...
Critical
Unreviewed
CVE-2023-28808
was published
Apr 11, 2023
A vulnerability was found in SourceCodester E-Commerce System 1.0. It has been rated as critical....
Critical
Unreviewed
CVE-2023-1557
was published
Mar 22, 2023
Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM...
Critical
Unreviewed
CVE-2023-0811
was published
Mar 16, 2023
A vulnerability was found in SourceCodester Online Food Ordering System 2.0 and classified as...
Critical
Unreviewed
CVE-2023-1432
was published
Mar 16, 2023
A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been rated as critical...
Critical
Unreviewed
CVE-2023-0963
was published
Feb 22, 2023
LS ELECTRIC XBC-DN32U with operating system version 01.80 does not properly control access to the...
Critical
Unreviewed
CVE-2023-22807
was published
Feb 15, 2023
A vulnerability was found in Little Apps Little Software Stats. It has been declared as critical....
Critical
Unreviewed
CVE-2015-10057
was published
Jan 16, 2023
An unauthenticated attacker in SAP NetWeaver AS for Java - version 7.50, due to improper access...
Critical
Unreviewed
CVE-2023-0017
was published
Jan 10, 2023
A vulnerability has been found in ghostlander Halcyon and classified as critical. Affected by...
Critical
Unreviewed
CVE-2021-4300
was published
Jan 5, 2023
A vulnerability was found in House Rental System and classified as critical. Affected by this...
Critical
Unreviewed
CVE-2022-4276
was published
Dec 3, 2022
A vulnerability, which was classified as critical, has been found in SourceCodester Human...
Critical
Unreviewed
CVE-2022-4273
was published
Dec 3, 2022
A vulnerability, which was classified as critical, has been found in FeMiner wms. Affected by...
Critical
Unreviewed
CVE-2022-4272
was published
Dec 3, 2022
A vulnerability classified as critical was found in SourceCodester Book Store Management System 1...
Critical
Unreviewed
CVE-2022-4229
was published
Nov 30, 2022
ProTip!
Advisories are also available from the
GraphQL API